Home Malware Programs Remote Administration Tools BlackIce Trojan

BlackIce Trojan

Posted: March 28, 2006

The origination date of this RAT application is March 1998. It was written in Delphi and compressed with NeoLIte. The place of origin is China, and the interface of the application is also written in Chinese. A Remote Administration Tool is a special kind of hacker malware, used for remote access and control of other people’s PCs. The attacker infects the PC via the e-mail or File and Print Sharing. A “server� allows him to connect via a “client� on his own machine. The functions of a RAT may vary, depending on the needs of the hacker. Some RATs can’t really harm your PC and the only purpose they were made for is hooliganism. But some versions can steal vital information, remove files and even crash your computer.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 !69989.exe
    2 [system
    3 jade.exe
    4 start

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionunserviceswinrouteunwin-ampHKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversion

Related Posts

Loading...